Home | Contact Us | FAQ | Search & Site Map | Link to Us
Sign In | Join | Other 45 Sites in Network
Home
Discussion Groups
General
GeneralPortable MacsHardwareNetworking
Applications
Mac ApplicationsEudoraFirefox / MozillaInternet ExplorerOutlook ExpressMS OfficeEntourageExcelPowerPointWordVirtual PCMedia PlayerOther MS Products
Programming
Mac ProgrammingCodeWarriorPerl
Country Specific
Australian Mac GroupUK Mac Group

Mac Forum / Programming / Perl / May 2004



Tip: Looking for answers? Try searching our database.

Anyone got a perl script to catch the disk: and help: uris in web browsers?

Thread view: 
Enable EMail Alerts  Start New Thread
Thread rating: 
Joel Rees - 20 May 2004 00:08 GMT
Macintouch is showing an AS script:

    http://www.macintouch.com/#notesandtips

I've never been comfortable with AS, so I'm thinking about installing
it to see how it works, then re-writing it in perl, and maybe even
further trap all attempts to climb the directory tree in the uri.

(With any luck, Apple will have at least a patch to trap URIs that
attempt to access directories above /Library before I'm finished. It
occurs to me I've seen this exploit used in the past. I don't think the
attacker accomplished anything other than leaving me with an unexpected
disk image on the desktop and lifesaver in the menu bar. I re-install
my system periodically, because I know Apple's in the expansion phase
with this OS, and I expect these kinds of holes to show up.)
Chris Nandor - 26 May 2004 14:49 GMT
> Macintouch is showing an AS script:
>
[quoted text clipped - 3 lines]
> it to see how it works, then re-writing it in perl, and maybe even
> further trap all attempts to climb the directory tree in the uri.

You can use Mac::InternetConfig to "disable" the protocol handlers.  But
RCDefaultApp is a better solution for this.

Signature

Chris Nandor                      pudge@pobox.com    http://pudge.net/
Open Source Development Network    pudge@osdn.com     http://osdn.com/

 
Sign In
Join
My Latest Posts
My Monitored Threads
My Blog
My Photo Gallery
My Profile
My Homepage

Start New Thread
Enable EMail Alerts
Rate this Thread



©2009 Advenet LLC   Privacy Policy - Terms of Use
This website includes both content owned or controlled by Advenet as well as content owned or controlled by third parties.